{
  "data": {
    "a": {
      "slug": "agent-browser",
      "name": "agent-browser",
      "vendor": "Vercel Labs",
      "vendorUrl": "https://agent-browser.dev",
      "kind": "mcp",
      "category": "browser",
      "summary": "agent-browser is an open-source command-line tool from Vercel Labs that lets AI agents drive Chrome through accessibility-tree snapshots and element refs. It runs locally as a Rust binary and includes a stdio MCP server.",
      "url": "https://www.anchorterminal.com/tools/agent-browser",
      "markdownUrl": "https://www.anchorterminal.com/tools/agent-browser.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/agent-browser.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/agent-browser.json",
      "repo": "https://github.com/vercel-labs/agent-browser",
      "license": "Apache-2.0",
      "transports": [
        "stdio"
      ],
      "packages": [
        {
          "registry": "npm",
          "name": "agent-browser"
        }
      ],
      "auth": "none",
      "authNotes": "No account or key. The CLI and its daemon run on the owner's machine. Site logins are held in a local auth vault encrypted with AES-256-GCM, in saved state files (plaintext unless `AGENT_BROWSER_ENCRYPTION_KEY` is set) or in a reused Chrome profile. Cloud browser providers and the optional `chat` command need their own keys in environment variables.",
      "pricing": "free",
      "pricingNotes": "Free and open source under Apache-2.0, with nothing to buy and no hosted service. The optional `chat` command and dashboard chat bill the user's own Vercel AI Gateway key, and cloud browser providers bill separately (checked 2026-10-08).",
      "priceSummary": "Free · OSS",
      "where": "local",
      "x402": {
        "level": "no",
        "evidence": "No x402, MPP or L402 in the README, the docs or the source (checked 2026-10-08).",
        "endpoints": []
      },
      "toolCount": 158,
      "popularity": {
        "githubStars": 43679,
        "npmWeekly": 2069828,
        "pypiWeekly": null,
        "asOf": "2026-10-08"
      },
      "docsUrl": "https://agent-browser.dev",
      "llmsTxt": "https://agent-browser.dev/llms.txt",
      "capabilities": [
        "browser.control",
        "browser.debug"
      ],
      "tags": [
        "official",
        "local",
        "open-source",
        "browser",
        "cli",
        "mcp",
        "rust",
        "no-auth",
        "llms-txt"
      ],
      "lastRelease": "2026-10-01",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 66.6,
        "grade": "B",
        "agentReady": false,
        "rank": 263,
        "ranked": true,
        "rankOf": 842,
        "categoryRank": 10,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 78,
          "maintenance": 70,
          "payments": 60,
          "reliability": 48,
          "schema": 84,
          "security": 67,
          "transparency": 61
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-08"
        },
        "negative": 0,
        "verdict": "Snapshots with element refs, a 29-tool default MCP profile and opt-in domain allowlists, action policies and content boundary markers suit agent use. The project is at 0.38.2 with no stable release, the ten most recent CI runs on main failed between 1 and 8 October 2026, and every security control is off by default.",
        "bestFor": "Coding agents with a shell that want short commands and compact snapshots.",
        "strengths": [
          "Accessibility-tree snapshots give each element a ref such as `@e2`, with `-i`, `-c`, `-d` and `--delta` to cut the output",
          "The stdio MCP server loads 29 tools by default and 158 with `--tools all`, each with a typed schema and `readOnlyHint`",
          "Domain allowlist, action policy, action confirmation and content boundary markers are documented with a threat model and known limitations",
          "19 tagged releases between 13 July and 1 October 2026, each with a changelog entry",
          "llms.txt and a Markdown copy of every docs page at agent-browser.dev, plus bundled skills served by `agent-browser skills get`"
        ],
        "weaknesses": [
          "The ten most recent CI runs on main, 1 to 8 October 2026, all concluded in failure. In the newest, Windows Rust tests and native end-to-end tests failed",
          "Version 0.38.2 with a Vercel Labs badge and no stable release or deprecation policy",
          "All security controls are opt-in. By default there is no limit on navigation, actions or output",
          "crates.io holds 0.19.0 from 14 March 2026, although the README lists `cargo install agent-browser` as an install route",
          "No SECURITY.md in the repository, and 840 open issues and pull requests, with most of the newest issues unlabelled and unanswered"
        ],
        "agentNotes": [
          "Run `agent-browser install` once after `npm install -g agent-browser`. It downloads Chrome for Testing",
          "Take a fresh `snapshot -i` after any navigation. Refs survive same-document changes only",
          "Pass `--json` for machine-readable results and `--max-output` to cap page text",
          "Set `--allowed-domains`, `--action-policy` and `--content-boundaries` for untrusted sites. None is on by default, and the allowlist rejects `--profile`, `--cdp` and `--restore`",
          "Start MCP with `agent-browser mcp`, and add profiles such as `--tools core,network` only when needed"
        ],
        "metrics": {
          "kind": "local",
          "measured": false
        },
        "reviewCount": 0,
        "avgRating": 0,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "B",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 66.6
          }
        ],
        "editorialScores": {
          "ergonomics": 78,
          "maintenance": 70,
          "payments": 60,
          "reliability": 48,
          "schema": 84,
          "security": 67,
          "transparency": 68
        },
        "provenanceScore": 53
      },
      "connect": {
        "install": "npm install -g agent-browser \u0026\u0026 agent-browser install",
        "config": {
          "mcpServers": {
            "agent-browser": {
              "args": [
                "mcp"
              ],
              "command": "agent-browser"
            }
          }
        }
      },
      "letme": {
        "capability": "https://letme.dev/browser.control",
        "tool": "https://letme.dev/agent-browser"
      },
      "area": "developer",
      "provenance": {
        "legalEntity": "Vercel Inc.",
        "domain": "agent-browser.dev",
        "domainRegistered": "2026-01-13",
        "domainNote": "The LICENSE file reads Copyright 2025 Vercel Inc., and the repository sits in the vercel-labs organisation on GitHub. agent-browser.dev has no security.txt (HTTP 404). vercel.com's is valid until 28 September 2027 and names HackerOne.",
        "endpointOnVendorDomain": null,
        "terms": "",
        "privacy": "",
        "statusPage": "",
        "changelog": "https://github.com/vercel-labs/agent-browser/blob/main/CHANGELOG.md",
        "securityTxt": "none",
        "checked": "2026-10-08",
        "notes": [
          "No terms or privacy document governs this software beyond the Apache-2.0 licence, so `terms` and `privacy` are left out."
        ],
        "score": 53
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/agent-browser.json"
    },
    "answer": "agent-browser scores 66.6 (B) on agent readiness against Skyvern's 63.1 (B), and leads in 3 of 7 scored categories. Skyvern leads on reliability, maintenance \u0026 community and transparency \u0026 trust.",
    "b": {
      "slug": "skyvern",
      "name": "Skyvern",
      "vendor": "Ikonomos Inc. (Skyvern)",
      "vendorUrl": "https://www.skyvern.com",
      "kind": "http-api",
      "category": "browser",
      "summary": "Skyvern is a browser agent that completes multi-step web workflows from natural-language goals using language models and computer vision. It runs as an AGPL-3.0 open-source server or a hosted cloud with a REST API and MCP server.",
      "url": "https://www.anchorterminal.com/tools/skyvern",
      "markdownUrl": "https://www.anchorterminal.com/tools/skyvern.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/skyvern.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/skyvern.json",
      "repo": "https://github.com/Skyvern-AI/skyvern",
      "license": "AGPL-3.0 for the open-source server, SDKs and MCP server. Skyvern Cloud is a proprietary service under Skyvern's terms, and its anti-bot measures aren't in the repository",
      "transports": [
        "http",
        "streamable-http",
        "stdio"
      ],
      "remoteUrl": "https://api.skyvern.com/v1",
      "packages": [
        {
          "registry": "pypi",
          "name": "skyvern"
        },
        {
          "registry": "npm",
          "name": "@skyvern/client"
        }
      ],
      "auth": "mixed",
      "authNotes": "Self-serve. Sign up at app.skyvern.com and copy the organisation API key from Settings, sent as `x-api-key`. MCP clients can use OAuth 2.0 with browser sign-in, PKCE and dynamic client registration, with no client ID to configure. Both credentials carry full authority over the organisation. OAuth scopes are identity claims, and there are no read-only or per-endpoint keys (https://www.skyvern.com/docs/developers/api/authentication-and-permissions.md).",
      "pricing": "freemium",
      "pricingNotes": "Free with 5,000 one-time credits and 1 concurrent run, no card and no contract. Hobby $29 a month with 30,000 credits and 10 concurrent runs. Pro $149 with 150,000 credits and 25 concurrent runs. Enterprise is custom. Extra credits can be bought from the Billing page at a price that isn't published. The billing docs count one credit a browser action, while the pricing page puts 5,000 credits at about 170 actions. Self-hosting the AGPL-3.0 server is free with your own model keys (https://www.skyvern.com/pricing, https://www.skyvern.com/docs/cloud/account-settings/billing-usage.md, checked 2026-10-08).",
      "priceSummary": "$29 / mo",
      "where": "both",
      "x402": {
        "level": "no",
        "evidence": "No x402, MPP or L402 in the docs (llms-full.txt), llms.txt or the pricing page (checked 2026-10-08).",
        "endpoints": []
      },
      "toolCount": 114,
      "popularity": {
        "githubStars": 23155,
        "npmWeekly": 3193,
        "pypiWeekly": 1636,
        "asOf": "2026-10-08"
      },
      "docsUrl": "https://www.skyvern.com/docs",
      "llmsTxt": "https://www.skyvern.com/docs/llms.txt",
      "openapi": "https://www.skyvern.com/docs/api-reference/openapi.json",
      "registryName": "io.github.Skyvern-AI/skyvern",
      "capabilities": [
        "browser.control",
        "browser.hosted",
        "web.extract",
        "automation.workflows",
        "browser.debug"
      ],
      "tags": [
        "official",
        "hosted",
        "open-source",
        "freemium",
        "no-card",
        "mcp",
        "oauth",
        "openapi",
        "llms-txt",
        "python",
        "typescript",
        "status-page",
        "soc2"
      ],
      "lastRelease": "2026-10-01",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 63.1,
        "grade": "B",
        "agentReady": false,
        "rank": 369,
        "ranked": true,
        "rankOf": 842,
        "categoryRank": 12,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 76,
          "maintenance": 85,
          "payments": 32,
          "reliability": 57,
          "schema": 88,
          "security": 59,
          "transparency": 72
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-08"
        },
        "negative": -3,
        "negativeNotes": [
          "2026-06-30. A public issue reports non-blind SSRF from workflow `http_request` and file download blocks to loopback, private and metadata addresses in version 1.0.39, with a reproduction (https://github.com/Skyvern-AI/skyvern/issues/6915). The issue is still open on 8 October 2026 and no advisory is published, but the 1.0.55 source routes these requests through an SSRF-guarded resolver, so we deduct 3 and not more. We didn't reproduce it, and whether Skyvern Cloud was exposed isn't stated."
        ],
        "verdict": "The hosted MCP server annotates every tool as read-only or destructive and can advertise a 29 or 32-tool subset in place of 114, and the API has a written six-month deprecation policy. Every key and OAuth token carries full organisation authority, with no read-only or scoped credential, and no request rate limits are documented.",
        "bestFor": "Agents that must finish a multi-step job on sites with logins, 2FA and forms, where stored credentials, saved workflows and cached scripts matter more than raw browser time.",
        "strengths": [
          "Every MCP tool carries readOnlyHint, destructiveHint and openWorldHint annotations, 117 registrations in the 1.0.55 source",
          "Hosted MCP scopes cut the advertised tools from 114 to 29 (`operate`) or 32 (`lean`) by URL or `X-Skyvern-Scope` header",
          "Written deprecation policy with six months' notice, 12 for a major version, and `Deprecation` and `Sunset` response headers",
          "OpenAPI 3.1.0 with 94 operations, llms.txt, Markdown twins of every docs page and a weekly dated changelog",
          "Stored passwords, cards and TOTP secrets are injected into the browser and replaced by placeholders in prompts, recordings and logs, per the docs"
        ],
        "weaknesses": [
          "Every API key and OAuth token has full organisation authority. The docs state there are no read-only, per-endpoint or per-resource keys",
          "No request rate limits in the docs. Responses carry `ratelimit-policy: \"submit-run\";q=50;w=60`, and only plan concurrency is published",
          "What a credit buys is stated three ways (one credit an action, 5,000 credits for about 170 or about 200 actions, by run complexity)",
          "An SSRF report against 1.0.39 from 30 June 2026 is still open with no advisory, though 1.0.55 source has SSRF guards",
          "Retention is \"as long as necessary\", anonymised data may train models unless you opt out by email, and no subprocessor list was readable"
        ],
        "agentNotes": [
          "Connect to https://api.skyvern.com/mcp/x/lean or /x/operate, or send `X-Skyvern-Scope`, so the client loads 32 or 29 tools. The scope filters the list and does not limit permissions",
          "Use a separate Skyvern organisation for each blast radius. Any key or OAuth token can read and write stored credentials and delete workflows",
          "Never pass passwords to `skyvern_act` or `skyvern_type`. Store them as credentials and call `skyvern_login`",
          "Set `max_steps` on tasks, or `x-max-steps-override` on agent runs, to cap credits. A run that reaches the cap ends as `timed_out`",
          "On 503 from POST /v1/run/agents, wait `Retry-After` seconds. No run was created, so resubmitting is safe"
        ],
        "metrics": {
          "kind": "remote",
          "measured": false
        },
        "reviewCount": 0,
        "avgRating": 0,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "B",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 63.1
          }
        ],
        "editorialScores": {
          "ergonomics": 76,
          "maintenance": 85,
          "payments": 32,
          "reliability": 57,
          "schema": 88,
          "security": 59,
          "transparency": 66
        },
        "provenanceScore": 78
      },
      "connect": {
        "install": "pip install skyvern",
        "http": "curl -X POST \"https://api.skyvern.com/v1/run/tasks\" -H \"x-api-key: YOUR_API_KEY\" -H \"Content-Type: application/json\" -d '{ \"url\": \"https://example.com\", \"prompt\": \"Extract the pricing table\" }'",
        "claudeCode": "claude mcp add --transport http skyvern https://api.skyvern.com/mcp/ --scope user",
        "config": {
          "mcpServers": {
            "Skyvern": {
              "headers": {
                "x-api-key": "YOUR_SKYVERN_API_KEY"
              },
              "type": "streamable-http",
              "url": "https://api.skyvern.com/mcp/"
            }
          }
        }
      },
      "letme": {
        "capability": "https://letme.dev/browser.control",
        "tool": "https://letme.dev/skyvern"
      },
      "area": "developer",
      "unitPrices": [
        {
          "item": "Hobby plan",
          "unit": "month",
          "usd": 29,
          "note": "30,000 credits, 10 concurrent runs"
        },
        {
          "item": "Pro plan",
          "unit": "month",
          "usd": 149,
          "note": "150,000 credits, 25 concurrent runs"
        },
        {
          "item": "Skyvern SMS number, Pro plan",
          "unit": "month",
          "usd": 10,
          "note": "per number, for SMS 2FA codes"
        }
      ],
      "provenance": {
        "legalEntity": "Ikonomos Inc.",
        "domain": "skyvern.com",
        "domainRegistered": "2023-10-16",
        "endpointOnVendorDomain": true,
        "terms": "https://www.skyvern.com/terms",
        "privacy": "https://www.skyvern.com/privacy",
        "statusPage": "https://status.skyvern.com",
        "changelog": "https://www.skyvern.com/docs/changelog",
        "securityTxt": "none",
        "checked": "2026-10-08",
        "notes": [
          "The terms (last modified 27 February 2026) and privacy policy (last modified 1 October 2026) name Ikonomos Inc., doing business as Skyvern, with Delaware law governing the terms.",
          "The API and the hosted MCP server answer at api.skyvern.com. OAuth is issued through clerk.skyvern.com, backed by Clerk.",
          "www.skyvern.com/.well-known/security.txt and api.skyvern.com/.well-known/security.txt both return 404. SECURITY.md in the repository sends reports to GitHub private advisories.",
          "RDAP for skyvern.com gives a registration date of 2023-10-16.",
          "docs.skyvern.com redirects to www.skyvern.com/docs."
        ],
        "score": 78
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/skyvern.json",
      "live": {
        "slug": "skyvern",
        "probe": {
          "target": "https://api.skyvern.com/v1",
          "method": "get",
          "lastAt": "2026-10-09T10:42:56.84120898Z",
          "lastOk": true,
          "lastStatus": 404,
          "lastMs": 262,
          "authRequired": false,
          "uptime24h": 100,
          "uptime30d": 100,
          "p50ms24h": 261,
          "p95ms24h": 305,
          "samples24h": 207,
          "samples30d": 207,
          "days": [
            {
              "date": "2026-10-08",
              "probes": 93,
              "ok": 93
            },
            {
              "date": "2026-10-09",
              "probes": 114,
              "ok": 114
            }
          ]
        },
        "vendorStatus": {
          "page": "https://status.skyvern.com",
          "indicator": "none",
          "summary": "All Systems Operational",
          "checkedAt": "2026-10-09T10:42:03.824726605Z"
        },
        "versions": [
          {
            "registry": "github",
            "name": "Skyvern-AI/skyvern",
            "version": "v1.0.55",
            "released": "2026-10-01",
            "seenAt": "2026-10-08T16:29:40.13703893Z"
          },
          {
            "registry": "mcp-registry",
            "name": "io.github.Skyvern-AI/skyvern",
            "version": "1.0.23",
            "seenAt": "2026-10-09T02:57:46.004536428Z"
          },
          {
            "registry": "npm",
            "name": "@skyvern/client",
            "version": "1.0.55",
            "seenAt": "2026-10-08T16:29:38.30771301Z"
          },
          {
            "registry": "pypi",
            "name": "skyvern",
            "version": "1.0.55",
            "released": "2026-10-01",
            "seenAt": "2026-10-08T16:29:38.116994413Z"
          }
        ],
        "githubStars": 23157,
        "npmWeekly": 3193,
        "pypiWeekly": 1636,
        "securityTxt": {
          "url": "https://skyvern.com/.well-known/security.txt",
          "state": "none",
          "checkedAt": "2026-10-08T15:39:09.6365622Z"
        },
        "pages": [
          {
            "url": "https://www.skyvern.com/docs/changelog",
            "kind": "changelog",
            "status": 200,
            "checkedAt": "2026-10-08T18:30:30.319986157Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "6d99e4f812de"
          },
          {
            "url": "https://www.skyvern.com/pricing",
            "kind": "pricing",
            "status": 200,
            "checkedAt": "2026-10-08T18:30:32.801128156Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "60620adf4132"
          },
          {
            "url": "https://www.skyvern.com/privacy",
            "kind": "privacy",
            "status": 200,
            "checkedAt": "2026-10-08T18:30:34.449549375Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "f526c5367b2e"
          },
          {
            "url": "https://www.skyvern.com/terms",
            "kind": "terms",
            "status": 200,
            "checkedAt": "2026-10-08T18:30:36.410139138Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "f2ece01dd7b7"
          }
        ],
        "updatedAt": "2026-10-09T10:42:56.84120898Z"
      }
    },
    "facts": [
      {
        "a": "MCP server",
        "b": "HTTP API",
        "name": "Kind"
      },
      {
        "a": "Vercel Labs",
        "b": "Ikonomos Inc. (Skyvern)",
        "name": "Vendor"
      },
      {
        "a": "no (local only)",
        "b": "https://api.skyvern.com/v1",
        "name": "Hosted endpoint"
      },
      {
        "a": "stdio",
        "b": "HTTP, Streamable HTTP, stdio",
        "name": "Transports"
      },
      {
        "a": "None",
        "b": "OAuth or key",
        "name": "Auth"
      },
      {
        "a": "Free",
        "b": "Freemium",
        "name": "Pricing"
      },
      {
        "a": "no",
        "b": "no",
        "name": "x402"
      },
      {
        "a": "Apache-2.0",
        "b": "AGPL-3.0 for the open-source server, SDKs and MCP server. Skyvern Cloud is a proprietary service under Skyvern's terms, and its anti-bot measures aren't in the repository",
        "name": "Licence"
      },
      {
        "a": "158",
        "b": "114",
        "name": "Tools exposed"
      },
      {
        "a": "no",
        "b": "no",
        "name": "Read-only variant documented"
      },
      {
        "a": "yes",
        "b": "yes",
        "name": "llms.txt"
      },
      {
        "a": "not listed",
        "b": "io.github.Skyvern-AI/skyvern",
        "name": "MCP registry"
      },
      {
        "a": "2026-10-01",
        "b": "2026-10-01",
        "name": "Last release"
      },
      {
        "a": "no document linked",
        "b": "2026-02-27",
        "name": "Terms last updated"
      },
      {
        "a": "no document linked",
        "b": "2026-10-01",
        "name": "Privacy policy last updated"
      },
      {
        "a": "",
        "b": "yes, with an opt-out",
        "name": "Customer content may train models"
      },
      {
        "a": "",
        "b": "not found in the text",
        "name": "Terms restrict automated access"
      },
      {
        "a": "",
        "b": "not found in the text",
        "name": "Terms restrict benchmarking"
      },
      {
        "a": "",
        "b": "not found in the text",
        "name": "Terms or service can change without notice"
      },
      {
        "a": "",
        "b": "yes",
        "name": "Arbitration or class-action waiver"
      },
      {
        "a": "44k stars, 2.1M npm/wk",
        "b": "23k stars, 3.2k npm/wk, 1.6k PyPI/wk",
        "name": "Popularity"
      }
    ],
    "faq": [
      {
        "answer": "agent-browser scores 66.6 (B) on agent readiness against Skyvern's 63.1 (B), and leads in 3 of 7 scored categories. Skyvern leads on reliability, maintenance \u0026 community and transparency \u0026 trust.",
        "question": "Which is better for AI agents, agent-browser or Skyvern?"
      },
      {
        "answer": "agent-browser needs no key. Skyvern takes an API key or an OAuth sign-in.",
        "question": "Do agent-browser and Skyvern need an API key?"
      },
      {
        "answer": "agent-browser runs on your own machine, with no hosted endpoint listed. Skyvern has a hosted endpoint at https://api.skyvern.com/v1.",
        "question": "Can an agent call agent-browser and Skyvern without installing anything?"
      },
      {
        "answer": "Yes. agent-browser is open source (Apache-2.0). Skyvern is open source (AGPL-3.0 for the open-source server, SDKs and MCP server. Skyvern Cloud is a proprietary service under Skyvern's terms, and its anti-bot measures aren't in the repository).",
        "question": "Are agent-browser and Skyvern open source?"
      }
    ],
    "goodFor": [
      {
        "aheadOn": [
          "Security \u0026 auth, 67 against 59",
          "Payments \u0026 pricing, 60 against 32"
        ],
        "also": [
          "No key needed to call it",
          "No incidents deducted, where Skyvern loses 3 points for them"
        ],
        "goodFor": "Coding agents with a shell that want short commands and compact snapshots.",
        "slug": "agent-browser",
        "watchFor": "The ten most recent CI runs on main, 1 to 8 October 2026, all concluded in failure. In the newest, Windows Rust tests and native end-to-end tests failed"
      },
      {
        "aheadOn": [
          "Reliability, 57 against 48",
          "Maintenance \u0026 community, 85 against 70",
          "Transparency \u0026 trust, 72 against 61"
        ],
        "also": [
          "A hosted endpoint, with nothing to install",
          "Free to start without a card"
        ],
        "goodFor": "Agents that must finish a multi-step job on sites with logins, 2FA and forms, where stored credentials, saved workflows and cached scripts matter more than raw browser time.",
        "slug": "skyvern",
        "watchFor": "Every API key and OAuth token has full organisation authority. The docs state there are no read-only, per-endpoint or per-resource keys"
      }
    ],
    "job": {
      "capability": "browser.control",
      "name": "Browser automation"
    },
    "others": [
      {
        "json": "https://www.anchorterminal.com/compare/agent-browser-vs-airtop.json",
        "title": "agent-browser vs Airtop",
        "url": "https://www.anchorterminal.com/compare/agent-browser-vs-airtop"
      },
      {
        "json": "https://www.anchorterminal.com/compare/agent-browser-vs-anchor-browser.json",
        "title": "agent-browser vs Anchor Browser",
        "url": "https://www.anchorterminal.com/compare/agent-browser-vs-anchor-browser"
      },
      {
        "json": "https://www.anchorterminal.com/compare/agent-browser-vs-browser-use.json",
        "title": "agent-browser vs Browser Use",
        "url": "https://www.anchorterminal.com/compare/agent-browser-vs-browser-use"
      },
      {
        "json": "https://www.anchorterminal.com/compare/agent-browser-vs-browserbase.json",
        "title": "agent-browser vs Browserbase",
        "url": "https://www.anchorterminal.com/compare/agent-browser-vs-browserbase"
      },
      {
        "json": "https://www.anchorterminal.com/compare/agent-browser-vs-browserless.json",
        "title": "agent-browser vs Browserless",
        "url": "https://www.anchorterminal.com/compare/agent-browser-vs-browserless"
      },
      {
        "json": "https://www.anchorterminal.com/compare/agent-browser-vs-chrome-devtools-mcp.json",
        "title": "agent-browser vs Chrome DevTools MCP",
        "url": "https://www.anchorterminal.com/compare/agent-browser-vs-chrome-devtools-mcp"
      },
      {
        "json": "https://www.anchorterminal.com/compare/agent-browser-vs-hyperbrowser.json",
        "title": "agent-browser vs Hyperbrowser",
        "url": "https://www.anchorterminal.com/compare/agent-browser-vs-hyperbrowser"
      },
      {
        "json": "https://www.anchorterminal.com/compare/agent-browser-vs-notte.json",
        "title": "agent-browser vs Notte",
        "url": "https://www.anchorterminal.com/compare/agent-browser-vs-notte"
      },
      {
        "json": "https://www.anchorterminal.com/compare/agent-browser-vs-playwright-mcp.json",
        "title": "agent-browser vs Playwright MCP",
        "url": "https://www.anchorterminal.com/compare/agent-browser-vs-playwright-mcp"
      },
      {
        "json": "https://www.anchorterminal.com/compare/agent-browser-vs-puppeteer-reference-server-archived.json",
        "title": "agent-browser vs Puppeteer (archived MCP reference server)",
        "url": "https://www.anchorterminal.com/compare/agent-browser-vs-puppeteer-reference-server-archived"
      },
      {
        "json": "https://www.anchorterminal.com/compare/agent-browser-vs-steel.json",
        "title": "agent-browser vs Steel",
        "url": "https://www.anchorterminal.com/compare/agent-browser-vs-steel"
      },
      {
        "json": "https://www.anchorterminal.com/compare/agent-browser-vs-tinyfish.json",
        "title": "agent-browser vs TinyFish",
        "url": "https://www.anchorterminal.com/compare/agent-browser-vs-tinyfish"
      },
      {
        "json": "https://www.anchorterminal.com/compare/airtop-vs-skyvern.json",
        "title": "Airtop vs Skyvern",
        "url": "https://www.anchorterminal.com/compare/airtop-vs-skyvern"
      },
      {
        "json": "https://www.anchorterminal.com/compare/anchor-browser-vs-skyvern.json",
        "title": "Anchor Browser vs Skyvern",
        "url": "https://www.anchorterminal.com/compare/anchor-browser-vs-skyvern"
      },
      {
        "json": "https://www.anchorterminal.com/compare/browser-use-vs-skyvern.json",
        "title": "Browser Use vs Skyvern",
        "url": "https://www.anchorterminal.com/compare/browser-use-vs-skyvern"
      },
      {
        "json": "https://www.anchorterminal.com/compare/browserless-vs-skyvern.json",
        "title": "Browserless vs Skyvern",
        "url": "https://www.anchorterminal.com/compare/browserless-vs-skyvern"
      },
      {
        "json": "https://www.anchorterminal.com/compare/chrome-devtools-mcp-vs-skyvern.json",
        "title": "Chrome DevTools MCP vs Skyvern",
        "url": "https://www.anchorterminal.com/compare/chrome-devtools-mcp-vs-skyvern"
      },
      {
        "json": "https://www.anchorterminal.com/compare/hyperbrowser-vs-skyvern.json",
        "title": "Hyperbrowser vs Skyvern",
        "url": "https://www.anchorterminal.com/compare/hyperbrowser-vs-skyvern"
      },
      {
        "json": "https://www.anchorterminal.com/compare/notte-vs-skyvern.json",
        "title": "Notte vs Skyvern",
        "url": "https://www.anchorterminal.com/compare/notte-vs-skyvern"
      },
      {
        "json": "https://www.anchorterminal.com/compare/playwright-mcp-vs-skyvern.json",
        "title": "Playwright MCP vs Skyvern",
        "url": "https://www.anchorterminal.com/compare/playwright-mcp-vs-skyvern"
      },
      {
        "json": "https://www.anchorterminal.com/compare/puppeteer-reference-server-archived-vs-skyvern.json",
        "title": "Puppeteer (archived MCP reference server) vs Skyvern",
        "url": "https://www.anchorterminal.com/compare/puppeteer-reference-server-archived-vs-skyvern"
      },
      {
        "json": "https://www.anchorterminal.com/compare/skyvern-vs-steel.json",
        "title": "Skyvern vs Steel",
        "url": "https://www.anchorterminal.com/compare/skyvern-vs-steel"
      },
      {
        "json": "https://www.anchorterminal.com/compare/skyvern-vs-tinyfish.json",
        "title": "Skyvern vs TinyFish",
        "url": "https://www.anchorterminal.com/compare/skyvern-vs-tinyfish"
      },
      {
        "json": "https://www.anchorterminal.com/compare/browserbase-vs-skyvern.json",
        "title": "Browserbase vs Skyvern",
        "url": "https://www.anchorterminal.com/compare/browserbase-vs-skyvern"
      }
    ],
    "scores": [
      {
        "agent-browser": 48,
        "by": 9,
        "edge": "skyvern",
        "key": "reliability",
        "name": "Reliability",
        "skyvern": 57,
        "weight": 16
      },
      {
        "key": "performance",
        "name": "Performance",
        "pending": true,
        "weight": 10
      },
      {
        "agent-browser": 84,
        "by": 4,
        "edge": "skyvern",
        "key": "schema",
        "name": "Schema \u0026 documentation",
        "skyvern": 88,
        "weight": 13
      },
      {
        "agent-browser": 78,
        "by": 2,
        "edge": "agent-browser",
        "key": "ergonomics",
        "name": "Agent ergonomics",
        "skyvern": 76,
        "weight": 13
      },
      {
        "agent-browser": 67,
        "by": 8,
        "edge": "agent-browser",
        "key": "security",
        "name": "Security \u0026 auth",
        "skyvern": 59,
        "weight": 14
      },
      {
        "agent-browser": 60,
        "by": 28,
        "edge": "agent-browser",
        "key": "payments",
        "name": "Payments \u0026 pricing",
        "skyvern": 32,
        "weight": 10
      },
      {
        "key": "tasks",
        "name": "Task success",
        "pending": true,
        "weight": 10
      },
      {
        "agent-browser": 70,
        "by": 15,
        "edge": "skyvern",
        "key": "maintenance",
        "name": "Maintenance \u0026 community",
        "skyvern": 85,
        "weight": 7
      },
      {
        "agent-browser": 61,
        "by": 11,
        "edge": "skyvern",
        "key": "transparency",
        "name": "Transparency \u0026 trust",
        "skyvern": 72,
        "weight": 7
      }
    ],
    "summary": "agent-browser scores 66.6 (B) on agent readiness against Skyvern's 63.1 (B), and leads in 3 of 7 scored categories. Skyvern leads on reliability, maintenance \u0026 community and transparency \u0026 trust. Both do browser automation.",
    "verdicts": {
      "agent-browser": "Snapshots with element refs, a 29-tool default MCP profile and opt-in domain allowlists, action policies and content boundary markers suit agent use. The project is at 0.38.2 with no stable release, the ten most recent CI runs on main failed between 1 and 8 October 2026, and every security control is off by default.",
      "skyvern": "The hosted MCP server annotates every tool as read-only or destructive and can advertise a 29 or 32-tool subset in place of 114, and the API has a written six-month deprecation policy. Every key and OAuth token carries full organisation authority, with no read-only or scoped credential, and no request rate limits are documented."
    }
  },
  "kind": "anchor.page",
  "links": {
    "api": "https://www.anchorterminal.com/api/v1/index.json",
    "html": "https://www.anchorterminal.com/compare/agent-browser-vs-skyvern",
    "json": "https://www.anchorterminal.com/compare/agent-browser-vs-skyvern.json",
    "llms": "https://www.anchorterminal.com/llms.txt",
    "markdown": "https://www.anchorterminal.com/compare/agent-browser-vs-skyvern.md",
    "slim": "https://www.anchorterminal.com/compare/agent-browser-vs-skyvern.min.md"
  },
  "markdown": "agent-browser scores 66.6 (B) on agent readiness against Skyvern's 63.1 (B), and leads in 3 of 7 scored categories. Skyvern leads on reliability, maintenance \u0026 community and transparency \u0026 trust. Both do browser automation.\n\n- agent-browser: grade B, 66.6/100, rank #263 of 842. Markdown https://www.anchorterminal.com/tools/agent-browser.md · JSON https://www.anchorterminal.com/api/v1/tools/agent-browser.json\n- Skyvern: grade B, 63.1/100, rank #369 of 842. Markdown https://www.anchorterminal.com/tools/skyvern.md · JSON https://www.anchorterminal.com/api/v1/tools/skyvern.json\n\n## Which one, for what\n\n### agent-browser (B)\n\nGood for: Coding agents with a shell that want short commands and compact snapshots.\n\nAhead on:\n- Security \u0026 auth, 67 against 59\n- Payments \u0026 pricing, 60 against 32\n\nAlso in its favour:\n- No key needed to call it\n- No incidents deducted, where Skyvern loses 3 points for them\n\nWatch for: The ten most recent CI runs on main, 1 to 8 October 2026, all concluded in failure. In the newest, Windows Rust tests and native end-to-end tests failed\n\n### Skyvern (B)\n\nGood for: Agents that must finish a multi-step job on sites with logins, 2FA and forms, where stored credentials, saved workflows and cached scripts matter more than raw browser time.\n\nAhead on:\n- Reliability, 57 against 48\n- Maintenance \u0026 community, 85 against 70\n- Transparency \u0026 trust, 72 against 61\n\nAlso in its favour:\n- A hosted endpoint, with nothing to install\n- Free to start without a card\n\nWatch for: Every API key and OAuth token has full organisation authority. The docs state there are no read-only, per-endpoint or per-resource keys\n\n\n## Score by category\n\n| Category | Weight | agent-browser | Skyvern | Edge |\n| --- | --- | --- | --- | --- |\n| Reliability | 16% (20 this run) | 48 | 57 | Skyvern +9 |\n| Performance | 10%, pending | pending | pending | not scored in this run |\n| Schema \u0026 documentation | 13% (16.2 this run) | 84 | 88 | Skyvern +4 |\n| Agent ergonomics | 13% (16.2 this run) | 78 | 76 | agent-browser +2 |\n| Security \u0026 auth | 14% (17.5 this run) | 67 | 59 | agent-browser +8 |\n| Payments \u0026 pricing | 10% (12.5 this run) | 60 | 32 | agent-browser +28 |\n| Task success | 10%, pending | pending | pending | not scored in this run |\n| Maintenance \u0026 community | 7% (8.8 this run) | 70 | 85 | Skyvern +15 |\n| Transparency \u0026 trust | 7% (8.8 this run) | 61 | 72 | Skyvern +11 |\n| Negative events | ≤15 | 0 | -3 | |\n| **Total** | | **66.6 · B** | **63.1 · B** | |\n\n## Facts side by side\n\n| Fact | agent-browser | Skyvern |\n| --- | --- | --- |\n| Kind | MCP server | HTTP API |\n| Vendor | Vercel Labs | Ikonomos Inc. (Skyvern) |\n| Hosted endpoint | no (local only) | `https://api.skyvern.com/v1` |\n| Transports | stdio | HTTP, Streamable HTTP, stdio |\n| Auth | None | OAuth or key |\n| Pricing | Free | Freemium |\n| x402 | no | no |\n| Licence | Apache-2.0 | AGPL-3.0 for the open-source server, SDKs and MCP server. Skyvern Cloud is a proprietary service under Skyvern's terms, and its anti-bot measures aren't in the repository |\n| Tools exposed | 158 | 114 |\n| Read-only variant documented | no | no |\n| llms.txt | yes | yes |\n| MCP registry | not listed | `io.github.Skyvern-AI/skyvern` |\n| Last release | 2026-10-01 | 2026-10-01 |\n| Terms last updated | no document linked | 2026-02-27 |\n| Privacy policy last updated | no document linked | 2026-10-01 |\n| Customer content may train models |  | yes, with an opt-out |\n| Terms restrict automated access |  | not found in the text |\n| Terms restrict benchmarking |  | not found in the text |\n| Terms or service can change without notice |  | not found in the text |\n| Arbitration or class-action waiver |  | yes |\n| Popularity | 44k stars, 2.1M npm/wk | 23k stars, 3.2k npm/wk, 1.6k PyPI/wk |\n\n## Verdicts\n\n**agent-browser.** Snapshots with element refs, a 29-tool default MCP profile and opt-in domain allowlists, action policies and content boundary markers suit agent use. The project is at 0.38.2 with no stable release, the ten most recent CI runs on main failed between 1 and 8 October 2026, and every security control is off by default.\n\n**Skyvern.** The hosted MCP server annotates every tool as read-only or destructive and can advertise a 29 or 32-tool subset in place of 114, and the API has a written six-month deprecation policy. Every key and OAuth token carries full organisation authority, with no read-only or scoped credential, and no request rate limits are documented.\n\n## Before you call either\n\n### agent-browser\n\n1. Run `agent-browser install` once after `npm install -g agent-browser`. It downloads Chrome for Testing\n2. Take a fresh `snapshot -i` after any navigation. Refs survive same-document changes only\n3. Pass `--json` for machine-readable results and `--max-output` to cap page text\n4. Set `--allowed-domains`, `--action-policy` and `--content-boundaries` for untrusted sites. None is on by default, and the allowlist rejects `--profile`, `--cdp` and `--restore`\n5. Start MCP with `agent-browser mcp`, and add profiles such as `--tools core,network` only when needed\n\n### Skyvern\n\n1. Connect to https://api.skyvern.com/mcp/x/lean or /x/operate, or send `X-Skyvern-Scope`, so the client loads 32 or 29 tools. The scope filters the list and does not limit permissions\n2. Use a separate Skyvern organisation for each blast radius. Any key or OAuth token can read and write stored credentials and delete workflows\n3. Never pass passwords to `skyvern_act` or `skyvern_type`. Store them as credentials and call `skyvern_login`\n4. Set `max_steps` on tasks, or `x-max-steps-override` on agent runs, to cap credits. A run that reaches the cap ends as `timed_out`\n5. On 503 from POST /v1/run/agents, wait `Retry-After` seconds. No run was created, so resubmitting is safe\n\n## Questions\n\n### Which is better for AI agents, agent-browser or Skyvern?\n\nagent-browser scores 66.6 (B) on agent readiness against Skyvern's 63.1 (B), and leads in 3 of 7 scored categories. Skyvern leads on reliability, maintenance \u0026 community and transparency \u0026 trust.\n\n### Do agent-browser and Skyvern need an API key?\n\nagent-browser needs no key. Skyvern takes an API key or an OAuth sign-in.\n\n### Can an agent call agent-browser and Skyvern without installing anything?\n\nagent-browser runs on your own machine, with no hosted endpoint listed. Skyvern has a hosted endpoint at https://api.skyvern.com/v1.\n\n### Are agent-browser and Skyvern open source?\n\nYes. agent-browser is open source (Apache-2.0). Skyvern is open source (AGPL-3.0 for the open-source server, SDKs and MCP server. Skyvern Cloud is a proprietary service under Skyvern's terms, and its anti-bot measures aren't in the repository).\n\n\n## For agents\n\n- This comparison as JSON: https://www.anchorterminal.com/compare/agent-browser-vs-skyvern.json, and with the fewest tokens: https://www.anchorterminal.com/compare/agent-browser-vs-skyvern.min.md\n- Over MCP at https://www.anchorterminal.com/mcp (no key): `compare_tools {\"a\": \"agent-browser\", \"b\": \"skyvern\"}`. From a terminal: `anchor compare agent-browser skyvern`\n- Each listing in full: https://www.anchorterminal.com/api/v1/tools/agent-browser.json and https://www.anchorterminal.com/api/v1/tools/skyvern.json\n\n## Other comparisons with agent-browser or Skyvern\n\n- [agent-browser vs Airtop](https://www.anchorterminal.com/compare/agent-browser-vs-airtop.md)\n- [agent-browser vs Anchor Browser](https://www.anchorterminal.com/compare/agent-browser-vs-anchor-browser.md)\n- [agent-browser vs Browser Use](https://www.anchorterminal.com/compare/agent-browser-vs-browser-use.md)\n- [agent-browser vs Browserbase](https://www.anchorterminal.com/compare/agent-browser-vs-browserbase.md)\n- [agent-browser vs Browserless](https://www.anchorterminal.com/compare/agent-browser-vs-browserless.md)\n- [agent-browser vs Chrome DevTools MCP](https://www.anchorterminal.com/compare/agent-browser-vs-chrome-devtools-mcp.md)\n- [agent-browser vs Hyperbrowser](https://www.anchorterminal.com/compare/agent-browser-vs-hyperbrowser.md)\n- [agent-browser vs Notte](https://www.anchorterminal.com/compare/agent-browser-vs-notte.md)\n- [agent-browser vs Playwright MCP](https://www.anchorterminal.com/compare/agent-browser-vs-playwright-mcp.md)\n- [agent-browser vs Puppeteer (archived MCP reference server)](https://www.anchorterminal.com/compare/agent-browser-vs-puppeteer-reference-server-archived.md)\n- [agent-browser vs Steel](https://www.anchorterminal.com/compare/agent-browser-vs-steel.md)\n- [agent-browser vs TinyFish](https://www.anchorterminal.com/compare/agent-browser-vs-tinyfish.md)\n- [Airtop vs Skyvern](https://www.anchorterminal.com/compare/airtop-vs-skyvern.md)\n- [Anchor Browser vs Skyvern](https://www.anchorterminal.com/compare/anchor-browser-vs-skyvern.md)\n- [Browser Use vs Skyvern](https://www.anchorterminal.com/compare/browser-use-vs-skyvern.md)\n- [Browserless vs Skyvern](https://www.anchorterminal.com/compare/browserless-vs-skyvern.md)\n- [Chrome DevTools MCP vs Skyvern](https://www.anchorterminal.com/compare/chrome-devtools-mcp-vs-skyvern.md)\n- [Hyperbrowser vs Skyvern](https://www.anchorterminal.com/compare/hyperbrowser-vs-skyvern.md)\n- [Notte vs Skyvern](https://www.anchorterminal.com/compare/notte-vs-skyvern.md)\n- [Playwright MCP vs Skyvern](https://www.anchorterminal.com/compare/playwright-mcp-vs-skyvern.md)\n- [Puppeteer (archived MCP reference server) vs Skyvern](https://www.anchorterminal.com/compare/puppeteer-reference-server-archived-vs-skyvern.md)\n- [Skyvern vs Steel](https://www.anchorterminal.com/compare/skyvern-vs-steel.md)\n- [Skyvern vs TinyFish](https://www.anchorterminal.com/compare/skyvern-vs-tinyfish.md)\n- [Browserbase vs Skyvern](https://www.anchorterminal.com/compare/browserbase-vs-skyvern.md)\n",
  "meta": {
    "attribution": "Anchor Terminal (https://www.anchorterminal.com)",
    "docs": "https://www.anchorterminal.com/docs/",
    "generatedAt": "2026-10-09",
    "license": "CC-BY-4.0",
    "method": "https://www.anchorterminal.com/benchmark/",
    "methodology": "0.4",
    "openapi": "https://www.anchorterminal.com/openapi.json",
    "preview": false,
    "run": "2026-10-01",
    "runLabel": "October 2026 research run"
  },
  "page": {
    "breadcrumbs": [
      {
        "name": "Home",
        "url": "https://www.anchorterminal.com/"
      },
      {
        "name": "Compare",
        "url": "https://www.anchorterminal.com/compare/"
      },
      {
        "name": "agent-browser vs Skyvern",
        "url": ""
      }
    ],
    "description": "agent-browser scores 66.6 (B) on agent readiness against Skyvern's 63.1 (B), and leads in 3 of 7 scored categories. Skyvern leads on reliability, maintenance \u0026 community and transparency \u0026 trust. Both do browser automation. Category scores, facts, verdicts and agent notes side…",
    "facts": [
      "agent-browser B 66.6",
      "Skyvern B 63.1",
      "scores"
    ],
    "h1": "agent-browser vs Skyvern",
    "image": "https://www.anchorterminal.com/assets/og/compare-agent-browser-vs-skyvern.png",
    "path": "/compare/agent-browser-vs-skyvern",
    "published": "2026-10-01",
    "section": "tools",
    "title": "agent-browser vs Skyvern for AI agents, B 66.6 vs B 63.1",
    "toc": null,
    "updated": "2026-10-09",
    "url": "https://www.anchorterminal.com/compare/agent-browser-vs-skyvern"
  },
  "tokens": {
    "markdown": 2600,
    "slim": 780
  },
  "version": 1
}
